CWE-415

High likelihood

Double Free

Parent: CWE-825 - Expired Pointer Dereference

The product calls free() twice on the same memory address.

823 vulnerabilities with CWE-415
CVE-2026-55995 HIGH
Double-free in the iSNS attribute decoder in open-iscsi
CVE-2026-17573 MEDIUM
Double Free in H5D__chunk_copy() in HDF5 via a Crafted Chunk-Index Size Field
CVE-2026-66373 HIGH
Redis < 8.8.0 - Double Free
CVSS 7.5
CVE-2026-66032 HIGH
libssh2 Double-Free Heap Corruption via sftp_open()
CVSS 8.8
CVE-2026-43823 HIGH
Apple swift-crypto < 4.5.1 - RSA Public Key Double-Free
CVSS 7.5
CVE-2026-64832 HIGH
FFmpeg 4.4 - 8.1.2 Double-Free in NVDEC Hardware Decoder via nvdec.c
CVSS 8.8
CVE-2026-64621 HIGH
FreeRDP before 3.28.0 Double-Free via selectedmonitors
CVSS 7.3
CVE-2026-13713 MEDIUM
YAML::Syck < 1.47 - Anchor Redefinition Double-Free
CVSS 6.2
CVE-2026-55132 HIGH
Microsoft Word Remote Code Execution Vulnerability
CVSS 7.8
CVE-2026-50685 HIGH
Microsoft Windows 10 Version 1607 - Windows DHCP Server Remote Code Execution Vulnerability
CVSS 7.5
CVE-2026-50361 HIGH
Microsoft Brokering File System Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-55004 HIGH
Microsoft Windows 10 Version 1607 - Windows Print Configuration Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-12659 HIGH
Rockwell Automation Flex 5000® Adapter - Denial of Service
CVE-2026-14604 MEDIUM
Open Asset Import Library Assimp PLY Model PlyLoader.cpp ExportToBlob double free
CVSS 6.3
CVE-2026-8925 CRITICAL
curl - SASL Double-Free
CVSS 9.8
CVE-2026-58381 MEDIUM
Gimp: gimp: double-free in read_layer_block()
CVSS 6.1
CVE-2026-10653 MEDIUM
Non-atomic `net_buf` reference counts cause double-free / free-list corruption under concurrent unref
CVSS 6.4
CVE-2026-14164 HIGH
Libarchive RAR5 Reader - Double Free Denial of Service
CVSS 7.5
CVE-2026-43706 MEDIUM
Apple Ios And iPadOS - Double Free
CVSS 6.5
CVE-2026-53322 HIGH
vfio/pci: Clean up DMABUFs before disabling function
CVSS 8.8
CVE-2026-53294 HIGH
mailbox: mailbox-test: don't free the reused channel
CVSS 7.8
CVE-2026-53286 HIGH
idpf: fix double free and use-after-free in aux device error paths
CVSS 7.8
CVE-2026-53233 HIGH
netdev: fix double-free in netdev_nl_bind_rx_doit()
CVSS 7.8
CVE-2026-53067 HIGH
PCI: endpoint: pci-ep-msi: Fix error unwind and prevent double alloc
CVSS 7.8
CVE-2026-53009 HIGH
Linux Kernel ice - tx_buf skb Double Free
CVSS 7.8
Details
Vulnerabilities 823
Exploit Likelihood High